I believe instead of IP Pool NAT, what you need is Office Mode.

You can find details about it in the VPN pdf document you will find in your
installation disks and is also available at the Check Point website.

Regards

On 9/4/07, Wayne Keatts <[EMAIL PROTECTED]> wrote:
>
> I need to allow connections from our lan to SecureClient.  I have created
> an
> IP NAT Pool, and applied it to SecureClient connections.  A sniffer on the
> local lan shows traffic from the SecureClient is indeed being NAT'ed
> behind
> this pool.  However, if we try to connect to the SecureClient from the
> LAN,
> we don't get a response.  SmartView Tracker shows the traffic is being
> encrypted, however the SecureClient log viewer shows a VPN Error 01.  A
> quick search of SecureKnowledge yeilded an article that says to create a
> rule in Address Translation that prevents NAT'ing on this outbound
> traffic.
> When I apply this rule, I get the VPN Error 01 in SmartView Tracker and
> the
> action is no longer Encrypt.
>
> I'm running NG AI R55 HFA19 on the gateway and SecureClient R56 build 269
> on
> the mobile.
>
> Can anyone give me pointers on how to get traffic initiated in the
> encryption domain back to a SecureClient?
>
> =================================================
> To set vacation, Out-Of-Office, or away messages,
> send an email to [EMAIL PROTECTED]
> in the BODY of the email add:
> set fw-1-mailinglist nomail
> =================================================
> To unsubscribe from this mailing list,
> please see the instructions at
> http://www.checkpoint.com/services/mailing.html
> =================================================
> If you have any questions on how to change your
> subscription options, email
> [EMAIL PROTECTED]
> =================================================
>



-- 
Sergio Alvarez
(506)8301342

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to